Libxml2
Vendor:
First CVE: Dec 31, 2003 · Active for 22 years
108
Total CVEs
More Total CVEs than 99% of tracked products
4.9
Avg CVEs / Year
Higher CVE frequency than 87% of tracked products
6.9
Avg CVSS
Higher Avg CVSS than 39% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Libxml2 over time
Volume of CVEsAvg CVSS Base Score
First CVE
Dec 31, 2003
22 years ago
Most Recent CVE
Jun 29, 2026
26 days ago
CVE Severity & Scoring
Libxml2108 CVEs
43%
44%
9%
All CVEs352,708 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local18 (16.7%)
Network63 (58.3%)
Unknown27 (25.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low74 (68.5%)
High7 (6.5%)
Unknown27 (25.0%)
User Interaction
None48 (44.4%)
Unknown27 (25.0%)
Required33 (30.6%)
Privileges Required
Low4 (3.7%)
High0 (0.0%)
None77 (71.3%)
Unknown27 (25.0%)
Top CVEs
Signals from CVEs in this product scope (108 CVEs).
108 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-3529HIGH Heap-based buffer overflow in the xmlParseAttValueComplex function in parser.c in libxml2 before 2.7.0 allows context-dependent attackers to cause a denial of service (crash) or ex | Sep 12, 2008 | 10.0 | 54 | NO | YES |
CVE-2004-0989HIGH Multiple buffer overflows in libXML 2.6.12 and 2.6.13 (libxml2), and possibly other versions, may allow remote attackers to execute arbitrary code via (1) a long FTP URL that is no | Mar 1, 2005 | 10.0 | 49 | NO | YES |
CVE-2011-1944HIGH Integer overflow in xpath.c in libxml2 2.6.x through 2.6.32 and 2.7.x through 2.7.8, and libxml 1.8.16 and earlier, allows context-dependent attackers to cause a denial of service | Sep 2, 2011 | 9.3 | 47 | NO | YES |
CVE-2017-7376CRITICAL Buffer overflow in libxml2 allows remote attackers to execute arbitrary code by leveraging an incorrect limit for port values when handling redirects. | Feb 19, 2018 | 9.8 | 44 | NO | NO |
CVE-2004-0110HIGH Buffer overflow in the (1) nanohttp or (2) nanoftp modules in XMLSoft Libxml 2 (Libxml2) 2.6.0 through 2.6.5 allow remote attackers to execute arbitrary code via a long URL. | Mar 15, 2004 | 7.5 | 44 | NO | YES |
CVE-2026-6653CRITICAL Use After Free in libxml2's xmlParseInternalSubset from GNOME libxml2 version 2.9.11 to 2.11.0 allows a remote attacker to cause a denial-of-service via maliciously crafted XML inp | Jun 22, 2026 | 9.8 | 40 | NO | NO |
CVE-2022-40303HIGH An issue was discovered in libxml2 before 2.10.3. When parsing a multi-gigabyte XML document with the XML_PARSE_HUGE parser option enabled, several integer counters can overflow. T | Nov 23, 2022 | 7.5 | 38 | NO | NO |
CVE-2016-4658CRITICAL xpointer.c in libxml2 before 2.9.5 (as used in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3, and other products) does not forbid namespace nodes in | Sep 25, 2016 | 9.8 | 37 | NO | NO |
CVE-2026-11979HIGH libxml2 is vulnerable to multiple stack-based buffer overflows in the xmlcatalog utility when running in --shell mode. The usershell() function processes user input using fixed-siz | Jun 29, 2026 | 7.8 | 36 | NO | NO |
CVE-2016-4447HIGH The xmlParseElementDecl function in parser.c in libxml2 before 2.9.4 allows context-dependent attackers to cause a denial of service (heap-based buffer underread and application cr | Jun 9, 2016 | 7.5 | 35 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (108 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
7 CVEs
6.5% of CVEs· 88th percentile
Social Chatter
Signals from CVEs in this product scope (108 CVEs).
Media Mentions
Signals from CVEs in this product scope (108 CVEs).
Top CNAs Publishing CVEs For Libxml2
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 2.9.8 | 2 | 5.9 | 3.4% | 0 | 0 |
| 2.9.4 | 7 | 7.9 | 3.4% | 0 | 0 |
| 2.9.3 | 2 | 7.5 | 4.8% | 0 | 0 |
| 2.9.2 | 2 | 5.5 | 3.9% | 0 | 0 |
| 2.9.10 | 3 | 7.2 | 5.2% | 0 | 0 |
| 2.9.1 | 1 | 2.6 | 3.2% | 0 | 0 |
| 2.9.0 | 5 | 6.0 | 3.8% | 0 | 0 |
| 2.8.0 | 3 | 5.6 | 4.1% | 0 | 0 |
| 2.7.8 | 5 | 6.1 | 5.7% | 0 | 1 |
| 2.7.7 | 7 | 6.0 | 5.2% | 0 | 1 |
| 2.7.6 | 7 | 6.0 | 5.2% | 0 | 1 |
| 2.7.5 | 7 | 6.0 | 5.2% | 0 | 1 |
| 2.7.4 | 7 | 6.0 | 5.2% | 0 | 1 |
| 2.7.3 | 7 | 6.0 | 5.2% | 0 | 1 |
| 2.7.2 | 7 | 6.0 | 5.2% | 0 | 1 |
| 2.7.1 | 8 | 5.9 | 5.6% | 0 | 2 |
| 2.7.0 | 8 | 5.9 | 5.6% | 0 | 2 |
| 2.6.9 | 8 | 6.5 | 7.2% | 0 | 2 |
| 2.6.8 | 8 | 6.5 | 7.2% | 0 | 2 |
| 2.6.7 | 8 | 6.5 | 7.2% | 0 | 2 |